What is CVE-2026-65431?
CVE-2026-65431 is a vulnerability in the Joomla GeoIP extension from regularlabs.com. It involves a zipslip issue where GeoIP database update archives are extracted without path validation, potentially allowing unsafe file extractions. Users should temporarily disable automatic database updates and await an official patch from the vendor.
Azərbaycanca: CVE-2026-65431 boşluğu regularlabs.com saytının Joomla GeoIP uzantısında aşkarlanıb. Zərərli arxivlər yol yoxlanışı olmadan çıxarıldığı üçün zipslip hücumuna imkan verir, bu da faylların serverdə təhlükəsiz olmayan yerlərə yazılmasına səbəb ola bilər. İstifadəçilər GeoIP verilənlər bazası yeniləmələrini müvəqqəti dayandırmalı və rəsmi yamaq buraxılana qədər arxiv çıxarış funksiyasını deaktiv etməlidir.
Related CVEs
link basis: same weakness class CWE-22; shared vendor: regularlabs.com
FAQ2
Which platform's extension is affected by CVE-2026-65431?
This vulnerability affects the GeoIP extension for Joomla developed by regularlabs.com.
What temporary measure is recommended to prevent exploitation of CVE-2026-65431?
Users are advised to temporarily disable GeoIP database updates and deactivate the archive extraction functionality until an official patch is released.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.